Endpoint

6/30/2009
04:18 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

Sunbelt Software Joins StopBadware.org To Fight Badware

Sunbelt Software joins Google in contributing data to the project

CAMBRIDGE, Mass., June 30, 2009* - StopBadware.org, the collaborative initiative to combat viruses, spyware, and other bad software, announced today that Sunbelt Software, developer of the VIPRE anti-malware product line, will participate in the effort as a data partner. Sunbelt Software joins Google in contributing data to the project, which is based at Harvard University's Berkman Center for Internet & Society. The initiative is funded by Google, PayPal, Mozilla, AOL, and Trend Micro.

Hundreds of thousands of websites-some might count them in the millions-are associated with the distribution of badware. Some are deliberately malicious, trying to trick users into installing a virus on their computers, while others are legitimate websites that have been tampered with, putting the site's visitors at risk. In the most egregious cases, such sites can infect computers with vulnerable software simply by a user browsing to the page, a practice known as drive-by downloads.

StopBadware.org collects the URLs of these badware websites, whether malicious or compromised, from its data partners. It uses the information to support and encourage site owners and web hosting companies in cleaning up and protecting their sites. The initiative also conducts analysis of infection trends, offers independent reviews of its partners' findings, and operates a community website, BadwareBusters.org, that provides help to people who have been victims-or wish to avoid becoming victims-of badware.

"We are thrilled that a well-respected anti-malware company like Sunbelt Software has come on board as a data partner," said Maxim Weinstein, manager of StopBadware.org. "The new data offers us a different view of the badware website landscape and will help us to extend our reach and to provide richer analysis."

Sunbelt Software's director of malware research, Eric Howes, has been an advisor to StopBadware.org since early in its development, but the data partnership represents the first time the company has established an official relationship with the project.

"Sunbelt Software has always encouraged a collaborative approach to addressing the malware problem," said Eric Howes. "We are pleased to formalize our ongoing relationship with StopBadware and support the important work it does in educating the public and the industry."

Sunbelt will provide research data via ThreatTrackT, a comprehensive array of malicious url and malware data feeds. The data in these feeds is derived from multiple sources including: research from Sunbelt Labs; ThreatNetT, Sunbelt'sVIPRE user community that anonymously sends information on potential threats to Sunbelt Labs; and Sunbelt CWSandbox, the leading automated malware behavior analysis tool for fast and autonomous analysis of large volumes of malware samples.

This morning, StopBadware.org launched a new, richer report interface-integrating the new Sunbelt Software data-to its searchable Badware Website Clearinghouse. The new reports allow security researchers, law enforcement, site owners, and other interested parties to see a site's current and past badware activity, along with basic information about the site. Future enhancements are expected to provide insight into the concentration of badware sites on particular networks.

*About StopBadware.org*

StopBadware.org is a partnership among the academic community, consumer groups, technology industry leaders, and volunteers committed to protecting Internet users from threats to their privacy and security caused by bad software. StopBadware.org is led by Harvard University's Berkman Center for Internet & Society. The initiative is supported by Google, PayPal, Mozilla, AOL, and Trend Micro. For more information, please visit http://www.stopbadware.org.

*About Sunbelt Software*

Headquartered in Tampa Bay (Clearwater), Fla., Sunbelt Software was founded in 1994 and is a leading provider of Windows security and management software with product solutions in the areas of antispam software and antivirus software, antispyware software, and vulnerability assessment. Leading products include the CounterSpy and VIPRE product lines, Ninja Email Security, Sunbelt Exchange Archiver, and CWSandbox malware analysis tools. The company, located in Tampa Bay, Florida is part of the French-based Sunbelt International Group. For more information about Sunbelt Software, please visit the company's website at: http://www.sunbeltsoftware.com.

*Contact:*

Brian Alberti Davies Murphy Group +1-781-418-2403 [email protected]

Maxim Weinstein StopBadware.org +1-617-384-9101 [email protected]

Laurie Murrell Sunbelt Software +1-727-562-0101 [email protected]

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Kaspersky Lab Seeks Injunction Against US Government Ban
Jai Vijayan, Freelance writer,  1/19/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
The Year in Security: 2017
A look at the biggest news stories (so far) of 2017 that shaped the cybersecurity landscape -- from Russian hacking, ransomware's coming-out party, and voting machine vulnerabilities to the massive data breach of credit-monitoring firm Equifax.
Flash Poll
[Strategic Security Report] How Enterprises Are Attacking the IT Security Problem
[Strategic Security Report] How Enterprises Are Attacking the IT Security Problem
Enterprises are spending more of their IT budgets on cybersecurity technology. How do your organization's security plans and strategies compare to what others are doing? Here's an in-depth look.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2017-0290
Published: 2017-05-09
NScript in mpengine in Microsoft Malware Protection Engine with Engine Version before 1.1.13704.0, as used in Windows Defender and other products, allows remote attackers to execute arbitrary code or cause a denial of service (type confusion and application crash) via crafted JavaScript code within ...

CVE-2016-10369
Published: 2017-05-08
unixsocket.c in lxterminal through 0.3.0 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (preventing terminal launch), or possibly have other impact (bypassing terminal access control).

CVE-2016-8202
Published: 2017-05-08
A privilege escalation vulnerability in Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) releases earlier than v7.4.1d and v8.0.1b could allow an authenticated attacker to elevate the privileges of user accounts accessing the system via command line interface. With affected version...

CVE-2016-8209
Published: 2017-05-08
Improper checks for unusual or exceptional conditions in Brocade NetIron 05.8.00 and later releases up to and including 06.1.00, when the Management Module is continuously scanned on port 22, may allow attackers to cause a denial of service (crash and reload) of the management module.

CVE-2017-0890
Published: 2017-05-08
Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.